[USN-5359-1] rsync vulnerability

Severity Medium
Affected Packages 2
CVEs 1

rsync could be made to crash or run programs if it received specially crafted network traffic.

Danilo Ramos discovered that rsync incorrectly handled memory when
performing certain zlib deflating operations. An attacker could use this
issue to cause rsync to crash, resulting in a denial of service, or
possibly execute arbitrary code.

Package Affected Version
pkg:deb/ubuntu/rsync?distro=focal < 3.1.3-8ubuntu0.3
pkg:deb/ubuntu/rsync?distro=bionic < 3.1.2-2.1ubuntu1.4
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:deb/ubuntu/rsync?distro=focal ubuntu rsync < 3.1.3-8ubuntu0.3 focal
Affected pkg:deb/ubuntu/rsync?distro=bionic ubuntu rsync < 3.1.2-2.1ubuntu1.4 bionic
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...